Senior Manager, Governance, Risk & Compliance

Remote Full-time
About the position The Senior Manager, Governance, Risk & Compliance is a key leadership position in Vanguard’s Global Enterprise Security’s Governance, Risk, Compliance (GRC) and Strategic Operations team. This position leads a team which oversees, recommends, develops, implements, and monitors enterprise-wide information security policies, procedures, and operational guidelines. It sets the departmental Enterprise Security and Fraud GRC vision and develops strategies in alignment with the overall mission. Modernize integrated GRC framework to align with evolving risks, technological advancements, business priorities, and regulatory obligations. Responsibilities • Hires, evaluates, and supervises crew. Provides guidance and training as necessary to develop crew. Sets performance standards, reviews performance, and makes informed compensation decisions in accordance with all applicable Human Resources policies and procedures. • Defines and executes the vision, strategy, and roadmap for GRC to support the overall cybersecurity and fraud risk objectives and priorities. • Oversees partnerships with Enterprise Security and Fraud subdivisions and Vanguard business units regarding security of application and systems software, equipment, and related capabilities and performance characteristics to evaluate their effectiveness at meeting defined security requirements. • Defines integration requirements and identifies ramifications on Security and Fraud, IT and business unit operations of their implementation. • Develops and maintains a comprehensive portfolio of global security policies and standards. Oversees and manages the entire lifecycle of the portfolio, ensuring alignment with organizational goals and regulatory requirements. • Responsible for governance and decision-making related to methodology and policy for all security and fraud functions. Influences key stakeholders and security policy owners during policy discussions. • Interfaces with clients on all inquiries related to Information and IT Security capabilities, bringing in technical experts as client situations demand. Responsible for review and approval of all RFP responses related to security. • Leads the modernization initiative to update a cohesive GRC framework, aimed at simplifying, upgrading, and creating clear visibility for policies, standards, controls, and taxonomy. Ensures alignment with risk management and compliance obligations at both enterprise and regional levels. Develops automations and data driven insights from to drive effective operations and risk reduction. • Briefs leadership on the state of cybersecurity and Fraud GRC to provide insights into trends and impact of strategic business, technology, and cybersecurity investments. • Works with Compliance and Regional Security and fraud teams to understand global regulatory requirements for security, develop global Security and Fraud policies and standards, and oversee implementation. Interfaces with external regulators for Security and Fraud. • Leads the development and maintenance of the Security and Fraud organization's key risk indicators and key performance indicators in partnership with Line 2 risk management. • Participates in special projects and performs other duties as assigned. Requirements • Minimum of ten years related work experience. • Undergraduate degree or equivalent combination of training and experience. • Proven leadership experience leading global cross-functional teams. • Demonstrated experience setting vision, strategy, and modernization service capabilities. • In-depth knowledge of relevant frameworks and control standards (i.e., NIST CSF, NIST 800-53, CIS Controls, ISO 27002) and financial services industry cyber regulations and guidelines, and considered an expert in the domain. • Proficient in developing effective cybersecurity GRC OKRs and risk-based controls dashboards. • Excellent communication and influencing skills. Influence key stakeholders and security policy and control owners. Nice-to-haves • Graduate degree preferred. • Professional certification (CISSP, CISM, CompTIA, SANS, ISC2) preferred. Apply tot his job
Apply Now →

Similar Jobs

Governance, Risk, and Compliance Analyst III

Remote Full-time

Now Hiring: Fully Remote Work-From-Home Position | No Experience Required | Start Immediately

Remote Full-time

AI Implementation – Governance Consultant

Remote Full-time

[Remote] Senior Consultant- Outsourcing Governance & Regulatory Oversight

Remote Full-time

Senior Data Management Consultant/ Data Governance SME (DoW Clearance Required)

Remote Full-time

Senior Governance, Risk, and Compliance Analyst job at Sprinklr in US National

Remote Full-time

Associate Director - Governance, Risk and Compliance Analyst job at Lilly in Indianapolis, IN

Remote Full-time

Insurance Risk Management, NYC area, Remote

Remote Full-time

Global Strategy & Governance Third Party Risk Analyst

Remote Full-time

Governance, Risk & Compliance Specialist

Remote Full-time

[Remote] 3D Visualization Artist | Photoreal Outdoor + Architecture – Unreal Engine Expert

Remote Full-time

Nurse Educator / Remote

Remote Full-time

Experienced Data Entry Clerk for Logistics and Administrative Support – Entry-Level Opportunity with arenaflex for Career Growth and Development

Remote Full-time

**Experienced Remote Data Entry Specialist – Manage Data with Flexibility and Competitive Pay**

Remote Full-time

Personal Brand Expert (Organic Growth Strategist)

Remote Full-time

Remote Senior Software Engineer - Cloud Distributed Systems

Remote Full-time

Systems Engineer, Behavioral Requirements

Remote Full-time

**Experienced Customer Experience Representatives Wanted: Join arenaflex's Dynamic Remote Team and Thrive in a Supportive Environment**

Remote Full-time

Education Advisor for USA (Contract Position)

Remote Full-time

Customer Success Manager - Core Clouds

Remote Full-time
← Back to Home